← Cloudera

2020 Cloudera / Hortonworks-heritage — public cloud buckets exposed credentials and internal build artifacts

2020 Unknown records affected Share on X

Data compromised

Infrastructure credentials, engineering identifiers, and CI-style archives per third-party bucket research—no standardized individual tally

Technical writeup

August 2020 research reporting catalogued publicly accessible object storage tied to Hortonworks-era infrastructure following the 2019 Cloudera merger, describing system credentials, developer-oriented material, and backups of automation such as Jenkins configurations with usernames and encrypted password fields exposed to the open internet. Framing in specialist coverage is misconfigured public buckets and leaked DevOps secrets rather than a single consumer PII count.

Root cause

Misconfigured public cloud object storage exposing operational and CI/CD backup content

References